openMAINT before 1.1-2.4.2 allows remote authenticated users to run arbitrary JSP code on the underlying web server.
The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.
Link | Tags |
---|---|
https://www.openmaint.org/en/download/latest-version | product vendor advisory |
https://www.exploit-db.com/exploits/48866 | exploit vdb entry third party advisory |